CA.FILORGA.COM PRIVACY AND COOKIE POLICY
Effective date: September 30, 2023
Ca.filorga.com (the “Website”) is operated by Prestilux Inc. with the authorization of Laboratoire SVR, located at 2 Rue de Lisbonne, 75008 Paris, France, on behalf of itself and its parent, and each of its affiliates (collectively, “Prestilux”, “we”, “us” and “our”), and is hosted on the e-commerce platform WordPress. (“WordPress”). This Privacy and Cookie Policy (the “Policy”) describes how Prestilux collects, uses, hosts, secures and/or discloses the personal information you provide to us when you visit the Website, make a purchase from the Website, or otherwise submit personal information to Prestilux through the Website. The way we handle your personal information may change over time and we will therefore update this Policy from time to time to reflect any changes in practice, as explained below.
WHAT IS “PERSONAL INFORMATION”?
For the purposes of this Policy, we refer to “Personal Information” as information about an identifiable individual, including information that can be used alone or with other information to identify, contact or locate an individual. In general, Personal Information does not include business contact information, such as your name, title, or business contact information.
WHAT PERSONAL INFORMATION DO WE COLLECT?
The Personal Information we collect may include, but is not limited to:
- Your contact information such as your first and last names, billing address, shipping address, payment information (including credit card numbers, credit card security numbers, credit card expiration dates and/or other payment details provided by WooCommerce), email address and telephone number in order to identify you, provide products and services to you and correspond with you;
- Your login information, such as your first and last name, email address and password;
- Marketing information and communication preferences, as well as your comments or survey responses;
- Any other Personal Information you provide to us.
HOW DO WE COLLECT YOUR PERSONAL INFORMATION?
Directly to you
Generally, we collect the Personal Information we need directly from you, for example, when you use the Website or communicate with us. We may also collect information relating to your use of the Website, including technical information about your visits, average length of visits, action taken on the Website or other information collected through cookies or similar technologies. For more information in this regard, we invite you to read the “Cookies” section.
With your consent
We generally collect your Personal Information with your consent, unless applicable law provides an exception to this principle (for example, to comply with our legal obligations, when necessary to establish, exercise or defend a legal claim or proceeding).
Refusal of collection and withdrawal of your consent
You have the right, if you wish, to refuse the processing of your Personal Information. You may also, at any time, and subject to reasonable notice and any applicable legal or contractual restrictions, withdraw your consent (if any) to the processing of your Personal Information in our possession by contacting us. You should be aware, however, that if you choose not to provide us with your Personal Information, this may prevent you from, for example, using the Website, as this information is essential to such use. You may contact us as indicated in the “Contact Form” section for any questions regarding this matter.
WHY DO WE COLLECT YOUR PERSONAL INFORMATION?
For specific and limited purposes
Prestilux generally collects your Personal Information for:
- Establishing and managing our relationship with you;
- Creating and managing your account (if applicable);
- Providing and maintaining the products or services namely accessing the Website, purchasing products, processing orders and arranging for delivery of products, and other actions in connection with your purchase;
- Contacting you to provide customer support;
- Responding to your information requests;
- Reviewing orders for potential risk or fraud; and
- Providing an optimized website experience
(collectively, the “Purposes”).
To send you messages
If you have consented to receive such information, Prestilux may send you newsletters, electronic messages such as emails or text messages, news, updates, contests, special offers and/or other written communications (collectively, the “Messages”) about Prestilux’s services and/or the products and/or services of its partners. You may opt-out of receiving Messages in the manner indicated in the “Contact Form” section or through the unsubscribe link included in the Messages. However, Prestilux may continue to send you Messages to inform you of available upgrades or critical technical issues related to the Website and the products you have requested or purchased, or to provide you with important account information (if any).
For secondary purposes
Prestilux may also aggregate and anonymize the Personal Information you have provided to create statistical data that Prestilux may use to improve the Website, examine purchasing patterns and user interests, or train machine learning algorithms. Prestilux may also share this information with its third-party partners. This statistical data does not include Personal Information.
WITH WHOM DO WE SHARE YOUR PERSONAL INFORMATION?
Prestilux does not rent or sell any of your Personal Information to third parties and will not share it with third parties without your consent, unless required by law or for the reasons set out below.
With our employees
In the course of their work, our employees may need to access your Personal Information, for example, when you contact us or request assistance. Their access is limited to what is necessary to perform their duties.
With our strategic partners
Prestilux may share your Personal Information with its partners to facilitate its activities, such as Laboratoire Dermatologiques d’Uriage, developers, payment and hosting service providers. As part of these activities, these partners may have access to your Personal Information for use for a limited time. Where Prestilux engages third parties to process any Personal Information, Prestilux endeavours to implement commercially reasonable contractual and technical protections to ensure that such third parties keep all Personal Information they process strictly confidential. Please note that these third parties may not be located in your geographic location. In such cases, Prestilux takes commercially reasonable steps, as described below in the “Where is your Personal Information hosted and transferred?” section.
Where required by applicable law
We may also share your Personal Information with third parties if necessary to comply with applicable laws and regulations or if we believe in good faith that such action is necessary to: (i) comply with the law; (ii) comply with an order of a competent judicial authority in any jurisdiction; (iii) comply with the legal process served on Prestilux; (iv) protect and defend the rights or property of Prestilux; (v) enforce or verify your compliance with any agreement you have entered into with Prestilux, if any; (vi) prevent fraud or other illegal activity perpetrated through the Website; or (vii) act in urgent circumstances to protect the personal safety of users of the Website or the general public.
When transferring a business
We may share your Personal Information without your permission when our operations require it (for example, in the event of a merger, acquisition, bankruptcy or asset sale). In such circumstances, we may also share some or all of your Personal Information with the relevant third-party (or its advisors) for purposes of a due diligence process.
For other purposes, with your consent
When you have expressly consented to it, your Personal Information may be shared with other third parties. For example, there may be specific instances where additional conditions apply and through these, we make it clear that specific third parties are processing your Personal Information.
THIRD-PARTY SERVICES AND PLATFORMS
We may include links on the Website to third-party sites or services that we do not control, for example, if you use an embedded feature of Google or social networks (Facebook, Twitter, Instagram, etc.). These third parties may share certain information about you with us. Your activities on the Website may be displayed on social networking platforms. If you click on any of these links, you will be directed to sites that we do not control. Please read the privacy policies of those sites, applications or platforms that may collect Personal Information to understand their privacy policies and Personal Information collection practices. This Policy applies only to Personal Information processed by or on behalf of Prestilux.
HOW LONG DO WE KEEP YOUR PERSONAL INFORMATION?
Personal Information will be retained only as long as necessary for the fulfillment of the Purposes or as required by law. At the end of this period, we endeavour to destroy or anonymize such information. In determining the appropriate retention period for your Personal Information, we consider the amount, nature and sensitivity of the Personal Information, the potential risk of harm from unauthorized use or disclosure of your Personal Information, the Purposes for which we are processing your Personal Information and the possibility of achieving those Purposes by other means, as well as applicable legal, regulatory, tax, accounting or other requirements. If you would like more information about these matters, please contact us.
HOW DO WE PROTECT YOUR PERSONAL INFORMATION?
With necessary and appropriate measures
Prestilux has security measures in place to protect your Personal Information. The standard security measures we use depend on the type of information collected. However, Prestilux uses electronic, physical and procedural safeguards, such as restricting access to platforms, computer equipment and physical premises, to protect your Personal Information. We encourage you to exercise caution when using the Internet.
Children’s privacy
The Website is not intended for persons under the age of 16. We do not intentionally collect Personal Information from children under the age of 16. If you are the parent or guardian of a minor and believe that your child has provided us with Personal Information, please contact our customer support team as set forth in the “Contact Form” section to request deletion of such information. If you choose to provide us with Personal Information through the Website, you represent that you are 16 years of age or older.
HOW DO WE USE COOKIES?
A cookie is a small text file that is stored in a dedicated location on your computer, mobile device, tablet or other device when you use your browser to visit an online service and saves a small amount of information when you visit our Website. Other tracking technologies, such as web beacons, log files, tags and tracking pixels may be used for similar purposes. In this Policy, all such tracking technologies are collectively referred to as “Cookie(s)”. Any Personal Information collected using Cookies by or on behalf of Prestilux is treated with the same level of confidentiality as any other Personal Information collected by or on behalf of Prestilux.
Strictly necessary cookies
These Cookies are necessary for the operation of the Website and cannot be disabled in our systems. Strictly necessary Cookies must be present in order for the Website to perform basic functions and may include logging in, adding items to a shopping cart or electronic billing. In particular, they allow a user to navigate from one page to another without losing previous actions in the same session. We use the following strictly necessary Cookies on the Website:
Company | Domain |
Filorga | ca.filorga.com, es.filorga.com, fr.filorga.com, int.filorga.com, pt.filorga.com, www.filorga.com |
Filorga focuses on the production and distribution of cosmetics, makeup and beauty products. | |
Greenshift | static.filorga.com.gshft.net |
Greenshift provides hosting services from local file servers with off-site backup to public facing infrastructure hosting; server operating systems including security, server application databases and packaged solutions for tasks such as web content management. | |
TrustArc | consent.trustarc.com |
TrustArc provides privacy compliance and risk management with integrated technology, consulting and TRUSTe certification solutions.
Terms and Conditions | Data Subject Rights | [Privacy Policy] |
Non-essential cookies
If you have consented to their use, Prestilux and/or its third-party partners may also use non-essential Cookies in connection with the Website and the Messages:
- Functionality Cookies: These cookies are not essential to the provision of our services. They allow us to personalize and improve the user experience. For example, if you have consented to their use, these Cookies will store your communication preferences. We use the following functionality Cookies on the Website:
- Analytical Cookies: We may use Analytical Cookies to better understand traffic patterns on the Website, to help us measure and improve the effectiveness of our services and Messages, and to determine whether those Messages have been opened and links clicked on. These Cookies are used for statistical purposes only. All information that these Cookies collect is aggregated and anonymous. To refuse to be tracked by Google Analytics, please visit this module: https://tools.google.com/dlpage/gaoptout?hl=en. You may also refuse the use of Analytical Cookies by following the instructions below. We use the following analytical Cookies:
Afterpay | afterpay.com, js.afterpay.com, portal.afterpay.com, static.afterpay.com |
Amazon (Cloudfront) | *.cloudfront.net, d9hhrg4mnvzow.cloudfront.net |
Amazon (Web Services) | dashhudson-static.s3.amazonaws.com, yotpo-editor-production.s3.amazonaws.com |
Avis Verifies | cl.avis-verifies.com |
Bootstrap CDN | maxcdn.bootstrapcdn.com |
Cloudflare | cdnjs.cloudflare.com |
Cookiebot | consentcdn.cookiebot.com, consent.cookiebot.com |
Dash Hudson | cdn.dashhudson.com, images.dashhudson.com |
Filorga | filorga.com, us.filorga.com, filorga.easiwebforms.net |
FullStory | edge.fullstory.com |
Google Inc. | google-analytics.com, maps.googleapis.com, region1.google-analytics.com, www.google-analytics.com, www.google.com, www.google.ie, www.googleoptimize.com, www.googletagmanager.com, www.gstatic.com, yt3.ggpht.com |
Hotjar | script.hotjar.com, static.hotjar.com, vars.hotjar.com |
Jsdelivr.com | cdn.jsdelivr.net |
Klaviyo | static-forms.klaviyo.com, static.klaviyo.com, static-tracking.klaviyo.com |
La Poste | ws.colissimo.fr |
LiveRamp | idsync.rlcdn.com, rlcdn.com |
LoyaltyLion | platform.loyaltylion.com, sdk.loyaltylion.net, sdk-static.loyaltylion.net |
Neustar, Inc., a TransUnion company | agkn.com |
Nielsen International SA | myvisualiq.net |
Ometria | cdn.ometria.com |
Ordergroove | static.ordergroove.com |
PayPal, Inc | c6.paypal.com, c.paypal.com, paypal.com, t.paypal.com, www.paypal.com, www.paypalobjects.com |
Polyfill Service | polyfill.io |
Privy | assets.privy.com, shopify.privy.com, widget.privy.com |
Samplicio.us | usersync.samplicio.us |
Scorecard Research | scorecardresearch.com |
Stripe | js.stripe.com, m.stripe.com, m.stripe.network, q.stripe.com |
Tarte Au Citron | tarteaucitron.io |
UNPKG | unpkg.com |
Unknown | cda.automat-ai.com, cdn.automat-ai.com, saas.automat-ai.com |
Upwave Inc. | px.surveywall-api.survata.com, surveywall-api.survata.com |
Yotpo | cdn-loyalty.yotpo.com, cdn-swell-assets.yotpo.com, cdn-widget-assets.yotpo.com, cdn-widgetsrepository.yotpo.com, cdn-yotpo-images-production.yotpo.com, p.yotpo.com, staticw2.yotpo.com, yotpo.com |
Zendesk | ekr.zdassets.com, filorgacanada.zendesk.com, static.zdassets.com, widget-mediator.zopim.com |
easiware | api.easiconnect.io, filorga.easi.chat |
iSpot.tv | ispot.tv |
- Social media Cookies. If you have consented, we use social media Cookies such as the Facebook Pixel to provide you with personalized offers, to measure, optimize and build audiences for advertising campaigns delivered on social media platforms. The Website may also use Cookies for sharing content with social media (such as Facebook and Pinterest). Use of the sharing buttons will set a Cookie to link content viewed on our Website to your user account with these networks, if applicable. We use the following social media Cookies:
- Advertising Cookies. If you have consented to their use, we use advertising Cookies to collect information about your devices in order to display ads based on relevant topics that may be of interest to you. In addition, our partners may use these Cookies to determine whether our advertisements were displayed to you and whether you interacted with them. In this case, our partners share data with us, including statistics about the performance of our ads. If you would like more information on how to manage and/or disable advertising cookies, visit http://www.youronlinechoices.com/. You may also opt-out of the use of these Cookies by following the instructions listed below. We use the following Advertising Cookies:
ADYOULIKE SA | omnitagjs.com, visitor.omnitagjs.com |
AWIN AG | www.dwin1.com |
Adform A/S | adform.net, cm.adform.net |
Adobe Audience Manager, Adobe Experience Platform | demdex.net, dpm.demdex.net |
Amazon Advertising | amazon-adsystem.com, s.amazon-adsystem.com |
BeeswaxIO Corporation | bidr.io |
Comcast International France SAS | ads.stickyadstv.com, fwmrm.net, *.v.fwmrm.net |
Criteo SA | criteo.com, csm.fr.eu.criteo.net, csm.nl.eu.criteo.net, csm.va.us.criteo.net, gum.criteo.com, sslwidget.criteo.com, static.criteo.net |
Dash Hudson | likeshop.me |
Google Advertising Products | adservice.google.com, adservice.google.ie, cm.g.doubleclick.net, doubleclick.net, googleads.g.doubleclick.net, static.doubleclick.net, stats.g.doubleclick.net, www.googleadservices.com |
Google Inc. | i.ytimg.com, www.youtube.com, www.youtube-nocookie.com, youtube.com |
GroupM UK Limited | mookie1.com |
ID5 Technology Ltd | id5-sync.com |
INVIBES GROUP | k.r66net.com, ks.invibes.com, kwebstat.videostep.com, static1.r66net.com, u.videostep.com |
IPONWEB GmbH | bidswitch.net, x.bidswitch.net |
Improve Digital | 360yield.com |
InMarket | ninthdecimal.com |
Index Exchange Inc. | casalemedia.com, r.casalemedia.com |
Liveintent Inc. | i.liadm.com, liadm.com |
Magnite CTV, Inc. | tremorhub.com |
Magnite, Inc. | pixel.rubiconproject.com, rubiconproject.com |
Media.net Advertising FZ-LLC | contextual.media.net, media.net |
MediaWallah | mediawallahscript.com, partner.mediawallahscript.com |
Mediavine, Inc. | exchange.mediavine.com |
Meta (formerly Facebook | connect.facebook.net, facebook.com, www.facebook.com |
Microsoft Advertising | bing.com, c.bing.com |
Nativo, Inc. | jadserve.postrelease.com, postrelease.com |
Blendee srl | dataproviders.neodatagroup.com |
Next14 | go.turboadv.com, js.turboadv.com, turboadv.com |
Nielsen Media Research Ltd. | exelator.com, loadus.exelator.com |
OpenX | openx.net, us-u.openx.net |
Oracle Advertising | bluekai.com |
Outbrain | amplify.outbrain.com, outbrain.com, sync.outbrain.com, tr.outbrain.com |
ct.pinterest.com, pinterest.com, s.pinimg.com, www.pinterest.ie | |
Privy | privymktg.com |
PubMatic, Inc | pubmatic.com, simage2.pubmatic.com |
www.redditstatic.com | |
Revcontent, LLC | trends.revcontent.com |
Roku Advertising Services | w55c.net |
Roq.ad GmbH | rqtrk.eu |
Salesforce DMP (formerly Krux Digital, Inc.) | beacon.krxd.net, krxd.net |
Samba TV, Inc. | ads.samba.tv |
Semasio GmbH | semasio.net |
Sharethrough, Inc | match.sharethrough.com, sharethrough.com |
Smaato, Inc. | s.ad.smaato.net, smaato.net |
Smart AdServer | rtb-csync.smartadserver.com, smartadserver.com |
Snap Inc. | sc-static.net, snapchat.com, tr.snapchat.com |
SpotX, Inc | spotxchange.com, sync.search.spotxchange.com |
Supership | socdm.com |
TPMN | ad.tpmn.co.kr, tpmn.co.kr |
Taboola Europe Limited | taboola.com |
Tapad, Inc. | tapad.com |
Teads France SAS | criteo-sync.teads.tv, teads.tv |
The UK Trade Desk Ltd | adsrvr.org, match.adsrvr.org |
TikTok | analytics.tiktok.com, tiktok.com |
TripleLift, Inc. | 3lift.com, eb2.3lift.com |
platform.twitter.com | |
Unbounce | 0138404c0ebe4191aae34e1654b2128c.pages.ubembed.com, assets.ubembed.com, builder-assets.unbounce.com, *.pages.ubembed.com |
Unknown | datafront.co |
Xandr, Inc. | adnxs.com, ib.adnxs.com, secure.adnxs.com |
Yahoo EMEA Limited | advertising.com, s.yimg.com |
Yahoo Inc. | analytics.yahoo.com, sp.analytics.yahoo.com, yahoo.com |
Yieldlab (Virtual Minds GmbH) | ad.yieldlab.net |
Yieldmo, Inc. | ads.yieldmo.com, sync-criteo.ads.yieldmo.com, yieldmo.com |
zeotap GmbH | zeotap.com |
You can control and manage Cookies by changing the settings on your browser or device. For details on how to configure your browser, please see the Help Center for Chrome, Safari, Firefox, Internet Explorer, Edge or Opera. Social Media Cookies can also be managed by checking the policies of the following social media:
- Facebook: https://www.facebook.com/policies/cookies/
- Facebook: https://policy.pinterest.com/en/cookies
However, if you reject Cookies, you may not be able to use all the features of the Website and Messages, and you will still receive advertisements, but they will not be as personalized. If you would like more information on how to manage and/or disable Non-Essential Cookies, please visit https://www.allaboutcookies.org/fr/ and https://optout.aboutads.info/?c=3&lang=fr
HOW DO WE OFFER ONLINE ADVERTISING?
Through Cookies or mobile advertising identifiers
As described above, we use your Personal Information to provide you with targeted advertisements or Messages that we believe may be of interest to you, including advertisements for particular services, and products. We share with our advertising partners information about your use of the Website, your purchases, and your interaction with our advertisements on other websites. This Personal Information is collected using Social Media Cookies and/or Advertising Cookies, as described above in the “Cookies” section. Some of this Personal Information will be shared directly with our advertising partners.
Based on your preferences on your mobile devices, Prestilux and its advertising partners may also use your mobile advertising ID to target and measure the effectiveness of their advertising campaigns. In iOS, this identifier is called “IDFA” (ID for Advertising); in Android (Google Play), this identifier is called “AAID” (Android Advertising ID). You can access and reset your mobile advertising ID or limit its use through the operating system settings of your mobile devices.
Under no circumstances will Prestilux allow advertising to children when it has actual knowledge that the user is under 13 years of age. To learn more about Prestilux’s advertising practices, please contact Prestilux as indicated in the “Contact Form” section.
For more information about how targeted advertising works, you can visit the Network Advertising Initiative (“NAI”) educational page at http://www.networkadvertising.org/understanding-online-advertising/how-does-it-work. In addition, you can opt-out of some of these services by visiting the Digital Advertising Alliance’s Opt-Out Portal at http://optout.aboutads.info/.
“Do Not Track”
Internet browsers can transmit “Do Not Track” (“DNT”) signals that indicate that a user does not wish to have their activity tracked across time and different websites. Currently, there is no universally accepted standard for how to interpret these signals, although work to create a consensus is underway. Therefore, we do not respond to these DNT signals.
WHERE IS YOUR PERSONAL INFORMATION HELD AND TRANSFERRED?
Your Personal Information may be held by Prestilux in locations other than your province or territory of residence, including in Quebec, Ontario, and France. Prestilux may also outsource the processing of your Personal Information or share it with third parties located elsewhere, including in locations other than your province or territory of residence. In such cases, Prestilux will ensure that your Personal Information is adequately protected by appropriate technical, organizational, contractual, or other legal means. If you would like more information about these security measures, please contact us.
WHAT ARE YOUR RIGHTS?
Under applicable law, you have various rights such as the right to access and rectify your Personal Information, the right to withdraw your consent (if any), the right to de-index your Personal Information, as well as the right to data portability, i.e., the right to receive a copy of any Personal Information that Prestilux holds about you in a structured, commonly used and machine-readable format. To exercise any of these rights (to the extent they are available), please contact us as set out in the “Contact Form” section.
POLICY CHANGE
Prestilux may, at its discretion, update, review, modify or supplement this Policy from time to time to reflect changes in its practices or for other operational, legal or regulatory reasons. If material changes are made to the Policy, you will be notified when you visit the Website and/or we will send you a link to the new version of the Policy. The Policy and any related documents, if any, will be posted on our Website. Prestilux asks its users to review and accept the revised Policy before continuing to use the Website.
CONTACT US
For more information about our privacy practices, if you wish to send a comment, if you have any questions, if you wish to file a complaint or exercise any of the rights available to you under applicable law, please contact our team through the “Contact Form” link on the Website or contact our Data Protection Officer as follows:
Data Protection Officer:
3537 Le Corbusier boul., Laval (Quebec), H7L 4Z4, Canada
Phone number: 1-450-963-5096
Email address: esalvo@prestilux.com